Is Jabra Device Connector (Browser Extension) safe?
Jabra Device Connector exposes a native messaging bridge to the Jabra SDK app that any web page can invoke without origin restrictions.
The extension's content script listens for a custom browser event on every web page. Any page can dispatch this event with an arbitrary payload, which the extension forwards directly to the locally installed Jabra SDK native host (com.jabra.sdk) via Chrome native messaging. There is no origin check on the incoming event, so any website the user visits can send commands to the native Jabra application.
Part of this rating comes from analysis signals we haven't published as detailed findings yet.
Who publishes itGn Hearing A/S - 1 other listing from the same operator, none carrying a finding
Gn Hearing A/S - 1 other listing from the same operator, none carrying a finding
What this publisher told the store about itself, and the other listings that told it the same thing.
Same store account
1 other listing published from this account, 90k+ users between them, none of them carrying a finding.
AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.
Publishers can request a review.
What it can do
Permissions this extension asks for, as declared in version 1.1.7. Asking for a permission is not a finding on its own - it is what the extension can do if it chooses to.
Talk to a program installed on your computer, outside the browser's sandbox
nativeMessaging
Where it sends data
Destinations our analysis observed Jabra Device Connector (Browser Extension) contacting. Sending data somewhere is not a finding on its own - an extension that syncs your settings has to talk to its own server - but it is where your data can go, and who else it goes to.
- com.jabra.sdk (local native host)
Jabra Device Connector (Browser Extension) sends data to com.jabra.sdk (local native host). Named as a recipient in this extension's own analysis.